Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,386cataloged exploits
36,533CVEs with public exploitation
24,695lab-tested
79,305 exploits
VulnCheck XDB
initial-access
CVE-2019-019210 Mar 2019
In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP
60RISK
open
GitHub PoC209
A WebKit exploit using CVE-2018-4441 to obtain RCE on PS4 6.20.
CVE-2018-444108 Mar 2019
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1,
28RISK
open
VulnCheck XDB
initial-access
CVE-2018-1724608 Mar 2019
Kibana versions before 6.4.3 and 5.6.13 contain an arbitrary file inclusion flaw in the Console plugin. An attacker with
60RISK
open
Exploit-DB
Sony Playstation 4 (PS4) < 6.20 - WebKit Code Execution (PoC)
CVE-2018-4441localhardware08 Mar 2019
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1,
28RISK
open
Exploit-DB
McAfee ePO 5.9.1 - Registered Executable Local Access Bypass
CVE-2018-6671MEDIUMwebappswindows08 Mar 2019
SB10240 - ePolicy Orchestrator (ePO) - Application Protection Bypass vulnerability
33RISK
open
Exploit-DB
DirectAdmin 1.55 - 'CMD_ACCOUNT_ADMIN' Cross-Site Request Forgery
CVE-2019-9625webappsphp08 Mar 2019
JBMC DirectAdmin 1.55 allows CSRF via the /CMD_ACCOUNT_ADMIN URI to create a new admin account.
23RISK
open
GitHub PoC7
CVE-2018-20250-WINRAR-ACE Exploit with a UI
CVE-2018-20250HIGHunder attackransomware08 Mar 2019
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
Metasploit0
Google Chrome 72 and 73 Array.map exploit
CVE-2019-5825MEDIUMunder attack07 Mar 2019
Out of bounds write in JavaScript in Google Chrome prior to 73.0.3683.86 allowed a remote attacker to potentially exploi
90RISK
open
Exploit-DBVexDay Proof
Drupal < 8.5.11 / < 8.6.10 - RESTful Web Services unserialize() Remote Command Execution (Metasploit)
CVE-2019-6340HIGHunder attackremotephp07 Mar 2019
Drupal core - Highly critical - Remote Code Execution
100RISK
open
Exploit-DBVexDay Proof
FreeBSD - Intel SYSRET Privilege Escalation (Metasploit)
CVE-2012-0217localfreebsd_x86-6407 Mar 2019
The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and
50RISK
open
Exploit-DBVexDay Proof
Linux < 4.20.14 - Virtual Address 0 is Mappable via Privileged write() to /proc/*/mem
CVE-2019-9213doslinux06 Mar 2019
In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which make
38RISK
open
Exploit-DBVexDay Proof
Android - getpidcon() Usage in Hardware binder ServiceManager Permits ACL Bypass
CVE-2019-2023dosandroid06 Mar 2019
In ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID
23RISK
open
Exploit-DBVexDay Proof
Android - binder Use-After-Free via racy Initialization of ->allow_user_free
CVE-2019-2025dosandroid06 Mar 2019
In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local
23RISK
open
GitHub PoC
Python CVE-2019-1003000 and CVE-2018-1999002 Pre-Auth RCE Jenkins
CVE-2019-100300006 Mar 2019
A sandbox bypass vulnerability exists in Script Security Plugin 1.49 and earlier in src/main/java/org/jenkinsci/plugins/
60RISK
open
GitHub PoC
Python CVE-2019-1003000 and CVE-2018-1999002 Pre-Auth RCE Jenkins
CVE-2018-199900206 Mar 2019
A arbitrary file read vulnerability exists in Jenkins 2.132 and earlier, 2.121.1 and earlier in the Stapler web framewor
45RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2019-100300006 Mar 2019
A sandbox bypass vulnerability exists in Script Security Plugin 1.49 and earlier in src/main/java/org/jenkinsci/plugins/
60RISK
open
GitHub PoC2
Python tool exploiting CVE-2018-20250 found by CheckPoint folks
CVE-2018-20250HIGHunder attackransomware05 Mar 2019
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
GitHub PoC126
ze0r/CVE-2018-8639-exp
CVE-2018-8639HIGHunder attackransomware05 Mar 2019
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
76RISK
open
VulnCheck XDB
client-side
CVE-2018-20250HIGHunder attackransomware05 Mar 2019
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
VulnCheck XDB
client-side
CVE-2018-20250HIGHunder attackransomware05 Mar 2019
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
VulnCheck XDB
local
CVE-2018-8639HIGHunder attackransomware05 Mar 2019
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
76RISK
open
Exploit-DB
Microsoft Edge Chakra 1.11.4 - Read Permission via Type Confusion
CVE-2019-0539doswindows04 Mar 2019
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi
45RISK
open
VulnCheck XDB
client-side
CVE-2018-20250HIGHunder attackransomware04 Mar 2019
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
Exploit-DBVexDay Proof
elFinder 2.1.47 - 'PHP connector' Command Injection
CVE-2019-9194webappsphp04 Mar 2019
elFinder before 2.1.48 has a command injection vulnerability in the PHP connector.
60RISK
open
Exploit-DB
Raisecom XPON ISCOMHT803G-U_2.0.0_140521_R4.1.47.002 - Remote Code Execution
CVE-2019-7385webappshardware04 Mar 2019
An authenticated shell command injection issue has been discovered in Raisecom ISCOM HT803G-U, HT803G-W, HT803G-1GE, and
28RISK
open
Exploit-DB
zzzphp CMS 1.6.1 - Cross-Site Request Forgery
CVE-2019-9082HIGHunder attackwebappsphp04 Mar 2019
ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Command Execution via public/
100RISK
open
GitHub PoC1
WinRar is a very widely known software for windows. Previous version of WinRaR was a vulnerability which has been patched in Feb-2019. Most of the people didn't update winrar so they are vulnerable in this Absolute Path Traversal bug [CVE-2018-20250]
CVE-2018-20250HIGHunder attackransomware04 Mar 2019
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
Exploit-DB
WordPress Core 5.0 - Remote Code Execution
CVE-2019-8943webappsphp01 Mar 2019
WordPress through 5.0.3 allows Path Traversal in wp_crop_image(). An attacker (who has privileges to crop an image) can
60RISK
open
Exploit-DB
Cisco WebEx Meetings < 33.6.6 / < 33.9.1 - Privilege Escalation
CVE-2019-1674HIGHlocalwindows01 Mar 2019
Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools Update Service Command Injection Vulnerability
46RISK
open
Exploit-DB
WordPress Core 5.0 - Remote Code Execution
CVE-2019-8942webappsphp01 Mar 2019
WordPress before 4.9.9 and 5.x before 5.0.1 allows remote code execution because an _wp_attached_file Post Meta entry ca
60RISK
open
previouspage 848 / 2,644next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.